Re: Man in the middle attack help



Hello atomic-spark,

Friday, March 24, 2006, 9:56:21 AM, you wrote:

Greetings to all,



I was wondering if anyone knew of a windows or freebsd program
that can spam MAC addresses through a network so I can overflow a
switch,

The program is needed for a practical lab I’m setting up to help
with my education into security and pen-testing because I would like
to expand on what I’m learning at uni, at home in a lab environment
of course.


Try EtherFlood - http://ntsecurity.nu/toolbox/etherflood/

EtherFlood floods a switched network with Ethernet frames with random hardware addresses.

and

Macof from Dsniff - http://monkey.org/~dugsong/dsniff/
Dsniffs "macof" generates random MAC addresses exhausting the switch's memory.
It is capable of generating 155,000 MAC entries on a switch per minute.
Some switches than revert to acting like a hub.

--

Roman Shirokov
Systems Administrator
CNA
e-mail: insecure@xxxxxxxxx
http://securitybox.org.ru

Key fingerprint: 85A4 8586 FEEE 171B D0F1 A9C1 27C8 A907 EE45 7D0E

Living in digital, thinking in binary, talking on IP - welcome to our world!


------------------------------------------------------------------------------
This List Sponsored by: Cenzic

Concerned about Web Application Security?
As attacks through web applications continue to rise, you need to proactively
protect your applications from hackers. Cenzic has the most comprehensive
solutions to meet your application security penetration testing and
vulnerability management needs. You have an option to go with a managed
service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm).
Download FREE whitepaper on how a managed service can help you:
http://www.cenzic.com/forms/ec.php?pubid=10025
And, now for a limited time we can do a FREE audit for you to confirm your
results from other product. Contact us at request@xxxxxxxxxx
------------------------------------------------------------------------------



Relevant Pages

  • [NEWS] Malicious DHCP Allows Root Compromise of Mac OS X
    ... Get your security news from a reliable source. ... A series of seemingly innocuous default settings can cause an affected Mac ... Anyone who can gain access to your network can gain administrator ... Carrel was more than fair to Apple Computer and its users. ...
    (Securiteam)
  • RE: How to find a changing IP on ethernet network
    ... called "port security". ... tell it how many MAC ... to issue an SMTP trap to your Network Management ...
    (Security-Basics)
  • RE: Rogue IP Address
    ... capability that you paid for when buying the switch, ... someone will holler about his network not working. ... prospectus based upon the core principle concepts of security. ... This ALL INCLUSIVE curriculum utilizes lectures, case studies and true hands-on utilization ...
    (Security-Basics)
  • Re: Media Sharing no longer working with gigabit switch?
    ... The switch is strictly a passive device, ... Other than that - it's worth testing the network properties of each PC ... Did you use MAC Clone feature or re-assign the ... and other programs that need ports opened to work ...
    (microsoft.public.windowsmedia.player)
  • RE: Rogue IP Address
    ... have a port to MAC address table at a minimum. ... that someone will holler about his network not working. ... prospectus based upon the core principle concepts of security. ... This ALL INCLUSIVE curriculum utilizes lectures, case studies and true hands-on utilization ...
    (Security-Basics)